security
your journal is encrypted. here's what else we do.
how we protect your data
we take standard security precautions and a few extra ones because this is mental health data. perfect security doesn't exist, but we try to get close.
found a vulnerability? please report it to security@moodlog.io.
security measures
- encryption in transit using tls/ssl
- encrypted storage of journal entries
- password hashing and session management
- optional two-factor authentication
- regular security updates
responsible disclosure
if you discover a security vulnerability, please report it responsibly to security@moodlog.io. we'll do our best to respond promptly and work with you to address the issue.
guidelines
- report vulnerabilities privately via email
- avoid accessing or modifying user data
- don't perform attacks that degrade service availability
- give us reasonable time to address issues before public disclosure
contact
report security vulnerabilities
security@moodlog.io